Bug 1913483

Summary: Access to the ES root url / from a project's pod on Openshift
Product: OpenShift Container Platform Reporter: OpenShift BugZilla Robot <openshift-bugzilla-robot>
Component: LoggingAssignee: Jeff Cantrill <jcantril>
Status: CLOSED ERRATA QA Contact: Giriyamma <gkarager>
Severity: high Docs Contact:
Priority: high    
Version: 4.5CC: anli, aos-bugs, igreen, jcantril, openshift-bugs-escalate, periklis, rcarrier, wyahia
Target Milestone: ---   
Target Release: 4.6.z   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: logging-exploration
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Cause: Non-administrative users do not have the MONITOR permission set to allow them to query to root endpoint to retrieve the ES version. Consequence: Users received a 403 response which would break any services that utilized this endpoint in prior releases Fix: Update the permission set to allow query of the root endpoint Result: Users are now able to determine the deployed version of ES
Story Points: ---
Clone Of: Environment:
Last Closed: 2021-02-01 15:16:13 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1906765    
Bug Blocks: 1913366    

Comment 2 Anping Li 2021-01-25 07:19:21 UTC
Verified on elasticsearch-operator.4.6.0-202101230113.p0

Comment 5 errata-xmlrpc 2021-02-01 15:16:13 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (OpenShift Container Platform 4.6.15 extras update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2021:0238